URLhaus Database

You are currently viewing the URLhaus database entry for http://michna.de/cgi-bin/attach/LUHJFwPAGqOw/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:447641
URL: http://michna.de/cgi-bin/attach/LUHJFwPAGqOw/
URL Status:Offline
Host: michna.de
Date added:2020-08-31 18:55:05 UTC
Last online:2020-09-02 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-31 18:56:12 UTC to abuse{at}strato[dot]de)
Takedown time:1 day, 15 hours, 43 minutes Poor (down since 2020-09-02 10:39:49 UTC)
Tags:emotet link epoch3 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-02000026741wGe5.exeexe 35ea3435b146aa1a08f26a15d73ab5bf4404734049b1f27e4836e532c5e1abd8n/a Heodo
2020-09-020175.exeexe fe172eb48b314c722614e91c80cbf3c3f694fcfbdd180b6b4861964c34403247n/a Heodo
2020-09-020002395610TfLSC.exeexe 641ca1c4700af3f223ba9b98c0d843c3acc34a5331862c41b68c244db6a8c6b2n/a Heodo
2020-09-02FbeUTzWuCqED.exeexe bfc115b7e3f2a28f53a62debb71e9e6009da27ccd5babdf32f4fa03142427348n/a Heodo
2020-09-0201241517406854rF0cSvOgjXx.exeexe bd3dc4657de66d33ce2f2cac43529cef3d5da66258c992cb8d9674f957e84473Virustotal results 16.18%Heodo
2020-09-02Tc9tF56OD5007.exeexe b6c7c65fcf04c8cbc8b9be5e4e6cc6948239df9bacd6230d5a22a341e5066c9dVirustotal results 8.70%Heodo
2020-09-01EU9lx195158760.exeexe b9cae66117965dd38dbce964d87c11899129e576754f98af23af9f8d7e6266c7Virustotal results 7.46%Heodo
2020-09-01j3DTy5jh5669110962720.exeexe 43f9eacf99a6289eb8d428ae5ad0af1b0964f13c84b562de78ef47b8d6591ca5Virustotal results 17.39%Heodo
2020-09-0104003431459596GANoZFg.exeexe e2b852633d2db77557225d68366a987af43438dc39617d45a76de4def486d925n/a Heodo
2020-09-01l7oT00024.exeexe 852331ad17fbc4298321d591d9647d0c25866b5c98c825de2405b23d3e7a70f1n/a Heodo
2020-09-01RL2yffka2Wun.exeexe 80a3f89ac4d0db1075f14e8a20ea647449506bc99da845928b2ad1fb611dbdd3n/a Heodo
2020-09-01001493210817.exeexe 73cf905d840325cbde42b76151f6eeea251ae53a46840dcaa80d32f2909374c9n/a Heodo
2020-09-011423.exeexe 73ab3e38dfd1c7a48d4badadf811e7ad08a1c0afe7e848a496474651ebcbc64fn/a Heodo
2020-09-01NfGjV14993635522579.exeexe 1d0c57fc0f686ed41c4310a50e56f0355c4b7971990dfa7b3bb1b5d5d3c04a7fn/a Heodo
2020-09-01kdmp9xY7Zf8005.exeexe e49f2c7da7df7c7220fa9f1d6de8b59adc21aa6125c476824f1457b83487b441n/a Heodo
2020-09-01GVHiBj1495370636236.exeexe 87c43dd70ec84576a1d02e37a8e01b078840b5cb865ff47635269aa47b389eb3n/a Heodo
2020-09-01nSNMilS.exeexe 2fd8d56596b9e32cf8180dc9f906c7578e1f717007671c5430bf7f7331c917b4n/a Heodo
2020-09-0100202110368.exeexe f449c9ed1f575b7023d5c809f220cb2ecd22432b548e29133318c43fc14d1eden/a Heodo
2020-09-01000061303408OFggzYyenEMX.exeexe 3b99185aebf25c4b2cf644306160ff5f216d206722b4994181f05205ee5a20fbn/a Heodo
2020-09-01cw58.exeexe 533947478fa52473d70773991ba614f0ffdac44b77035ee14bc93882995db5f7n/a Heodo
2020-09-0100039.exeexe e902dcbe0abec17a2e63e93e703ec1c9d8d9363763bbe6235f5193d59a4ba395n/a Heodo
2020-09-01jIa3233.exeexe 5ade48ed031e04c5f2fe2c54c2ebcf1c6d1dff3300dcd7e84dac487a1d67c643n/a Heodo
2020-09-01000095S7jOTia.exeexe 90e2e15ce4f660291584c258df0b563ef2fc4215f15c240cf78b8928b499a035n/a Heodo
2020-09-01rmc6M401712.exeexe 044996ad8b346a580c1dff8a75caf8a66037cc0f1891a709c2a976d51eb936b6n/a Heodo
2020-09-01034864144567.exeexe 4c8814b5b8a7259d490b12f6cc15ba51512d87cd1b279b1a8e4eb8ad557d95ean/a Heodo
2020-09-01mSHR07142589.exeexe f212d6193ae7b017efce342e27a19bf1555d7a510a0563fdafb4d293a543b175Virustotal results 15.71% Heodo
2020-09-01eZZ38rew422781820967.exeexe f701ef0a7ea221c106ff501e21ac754b43a1ebbd3017cc9dcae067b80e4024afVirustotal results 11.94% Heodo
2020-09-01LdG7UYz1Feiu.exeexe 21ec25f7dcf7d5cd89a1e6b74be5955b53bd9c48880c0305b2b688a18e5e76aan/a Heodo
2020-09-01Rd2BQrbl73069579935.exeexe b2549b7e9605575f6437534123413418415fbee583a5071fae4333b89eb66863n/a Heodo
2020-09-015778526.exeexe 7029865a09cc3be2643e39e15ad94b450f446cf3365035096542acd37f9df0e9Virustotal results 13.04% Heodo
2020-09-010003136541geEbEYTjzeVv.exeexe 42fb3ddf8eaa57ddd8f59b7b8e167fcf1a6dbb97c76ff20610af27d697a4fc16Virustotal results 13.04% Heodo
2020-09-01X01492429837184.exeexe a4e804077d565e4bbfa7e04f4e3c3758280c257b95ee64bbd83146bf159cf174n/a Heodo
2020-09-01pcIllZGBR.exeexe 3d7a0acfd99657adb697ede61692095bf4135d34c858da29d8159ea0f059d7f0Virustotal results 8.70% Heodo
2020-09-01Y9Q04762.exeexe c824405527929b0430cb4e7bce049506520e15612dcdca724378eeeb026f05b9n/a Heodo
2020-09-01yRe0000072572189.exeexe 030d2079f27a383e5c4a91514a5e1bd9f8f3f65c1fabdeabd33f2249fee4f5e6n/a Heodo
2020-09-01fnK.exeexe 59e726352b7d2cb02b2eb9a3a796fe54aefef95d869541aeb503462750063604Virustotal results 8.96% Heodo
2020-09-01215598dl2E.exeexe 648774f33f4cb8a92c3e7a28d2aca2ac224485c59e21e7dc22a3d5f42b32d8ffVirustotal results 8.70% Heodo
2020-09-01UbRBd73D.exeexe 8dbe52dae4d45f79ca3db98dc983999b5a5bfb0465d2b11b2d8bc855b659a4f7n/a Heodo
2020-09-01m5oS.exeexe 9ebc7d9bdf7db5bc37cf1c54ae813803a0067809d9752c4f8644def75c45ab78n/a Heodo
2020-09-01tUK.exeexe 4a07be1e55ccd859b7c1f41c47fa6ba97c073a981ec08617f98ce923a3bda418n/a Heodo
2020-08-31l29uxpaB050336730820.exeexe 685f2be45a4cbb4e68d5ce68725add860f9dc3c7586d41084d754739252da8c5Virustotal results 15.94%Heodo
2020-08-3108295713805445.exeexe bffebdc528cd9ec678f8ebd7167b822d398534abafca0704669a0f169aff2467n/aHeodo
2020-08-31LJM9DVdS97.exeexe af142b7fe2c82f2d6b15556a8878fa264d769cb69c0a991898c58d40d610ca6fVirustotal results 17.65%Heodo